CVEFeed Newsroom – Latest Cybersecurity Updates
The "Cyber Newsroom Feed" module is a live feed of the latest cyber news enriched with CVE and vulnerability data. The feed is updated every 5 minutes and includes the latest news from the cyber security industry. The feed is designed to provide users with a comprehensive overview of the latest cyber security news and trends.
-
cert.pl
Vulnerabilities in Windu CMS software
Vulnerabilities in Windu CMS software CVE ID CVE-2026-57309 Publication date 20 July 2026 Vendor JCD Product Windu CMS Vulnerable versions 4.1 Vulnerability type (CWE) Improper Neutralization of Speci ...
-
The Hacker News
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More
A single request should not be able to do this much. But this week, small inputs led to code execution, memory loss, stolen keys, and disabled security tools. The paths were often simple: exposed syst ...
-
The Hacker News
Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine
At least one Russian intelligence service is systematically hijacking internet-connected security cameras across Europe and Ukraine, using the feeds to watch military transport routes, weapons shipmen ...
-
security.nl
NCSC roept op tot snel installeren van updates Microsoft Office en SharePoint
Het Nationaal Cyber Security Centrum (NCSC) roept organisaties vandaag op om beveiligingsupdates voor Microsoft Office en SharePoint zo snel mogelijk te installeren. Het gaat onder andere om een patch ...
-
The Hacker News
New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During Extraction
Opening a crafted XZ archive in 7-Zip could let an attacker run code on the machine. The flaw, CVE-2026-14266, is a heap-based buffer overflow in how the archiver processes XZ chunked data, and Trend ...
-
security.nl
Duitse overheid waarschuwt dat WordPress-lek tot grote verstoringen kan leiden
De Duitse overheid waarschuwt dat een kritieke kwetsbaarheid in WordPress tot grote verstoringen bij bedrijven kan leiden en heeft de impact van het probleem code oranje gegeven. Dit is het op één na ...
-
security.nl
Misbruik van kritieke RCE-kwetsbaarheid in ServiceNow AI-platform gemeld
Aanvallers maken actief misbruik van een kritieke kwetsbaarheid in het AI-platform van ServiceNow waardoor een ongeauthenticeerde aanvaller op afstand code kan uitvoeren. Dat meldt cybersecuritybedrij ...
-
security.nl
NCSC verwacht op korte termijn misbruik van kritiek WordPress-lek - Update
maandag 20 juli 2026, 09:17 door Redactie, 0 reactiesLaatst bijgewerkt: Vandaag, 09:42 Het Nationaal Cyber Security Centrum (NCSC) verwacht dat aanvallers op korte termijn misbruik zullen maken van ee ...
-
The Cyber Express
CVE-2026-42533 Exposes Critical Pre-Auth nginx RCE Flaw
A newly disclosed security flaw, CVE-2026-42533, has revealed a critical Pre-Auth nginx vulnerability that could allow attackers to achieve reliable RCE (remote code execution) without authentication. ...
-
The Hacker News
Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution
F5 has shipped fixes for a critical nginx flaw that lets a remote, unauthenticated attacker trigger a heap buffer overflow in the worker process with crafted HTTP requests. CVE-2026-42533 was patched ...